Cyber Threat Hunter SME
4 weeks ago
Gray Tier Technologies LLC is seeking a highly skilled Cyber Threat Hunter SME to support the Department of Homeland Security (DHS) Hunt and Incident Response Team (HIRT). The ideal candidate will have a strong background in cyber forensic and network investigations, with expertise in leading edge technologies and industry standard forensic tools.
Responsibilities:- Perform event correlation using information gathered from various sources to gain situational awareness and determine the effectiveness of an observed attack.
- Assess network topology and device configurations to identify critical security concerns and provide security best practice recommendations.
- Collect network intrusion artifacts and use discovered data to enable mitigation of potential incidents.
- Analyze identified malicious network and system log activity to determine weaknesses exploited, exploitation methods, effects on system and information.
- Track and document on-site incident response activities and provide updates to leadership through executive summaries and in-depth technical reports.
- Plan, coordinate, and direct the inventory, examination, and comprehensive technical analysis of computer-related evidence.
- Serve as a technical forensics liaison to stakeholders and explain investigation details.
- U.S. Citizenship.
- Active Secret clearance (TS/SCI eligible) and ability to obtain DHS Suitability.
- 8+ years of directly relevant experience in cyber forensic and network investigations using leading edge technologies and industry standard forensic tools.
- Experience with reconstructing a malicious attack or activity.
- Ability to characterize and analyze network traffic, identify anomalous activity/potential threats, analyze anomalies in network traffic using metadata.
- Ability to create forensically sound duplicates of evidence (forensic images).
- Able to write cyber investigative reports documenting forensics findings.
- Experience and proficiency with EnCase, FTK, SIFT, X-Ways, Volatility, WireShark, Sleuth Kit/Autopsy, and Snort.
- EDR Tools: Crowdstrike, Carbon Black, etc.
- Carving and extracting information from PCAP data.
- Non-traditional network traffic: Command and Control.
- Preserving evidence integrity according to national standards.
- Designing cyber security systems and environments in a Linux environment.
- Virtualized environments.
- Conducting all-source research.
- 8+ years of experience and BS Computer Science, Cybersecurity, Computer Engineering, or related degree; or HS Diploma and 10+ years of host or digital forensics or network forensic experience.
- GCFA, GCFE, EnCE, CCE, CFCE, CEH, CCNA, CCSP, CCIE, OSCP, GNFA.
-
Cyber Threat Intelligence Analyst SME
4 weeks ago
Arlington, Virginia, United States Booz Allen Hamilton Full timeCyber Threat Intelligence Analyst SMEAt Booz Allen, we're committed to creating an environment where you can propel the industry forward. As a Cyber Threat Intelligence Analyst SME, you'll oversee the collection, documentation, assessment, and analysis of raw cyber threat information using tools and technologies like MISP, ThreatQ, FireEye, LookingGlass,...
-
Cyber Threat Intelligence Analyst SME
3 weeks ago
Arlington, Virginia, United States Booz Allen Hamilton Full timeCyber Threat Intelligence Analyst SMEThe Opportunity:As a cyber threat intel analyst, you will apply your expertise to investigate the most pressing cyber threats impacting our nation's critical infrastructure. You will help a team take on the adversary's perspective, identify their motivations, and recommend ways to harden systems, reduce their attack...
-
Cyber Threat Intelligence Analyst SME
4 weeks ago
Arlington, Virginia, United States Booz Allen Hamilton Full timeCyber Threat Intelligence Analyst SMEThe Opportunity:As a cyber threat intel analyst, you will investigate the most pressing cyber threats impacting our nation's critical infrastructure. You will apply your expertise to oversee the collection, documentation, assessment, and analysis of raw cyber threat information using tools and technologies like MISP,...
-
Cyber Threat Intelligence Specialist
4 weeks ago
Arlington, Virginia, United States Piper Companies Full timePiper Companies is seeking a Cyber Threat Analyst to work on-site in Arlington, VA. The Cyber Threat Analyst will be responsible for onsite incident response and investigation, assessing cyber-attack severity, developing mitigation strategies, and aiding in service restoration for civilian government agencies and critical infrastructure...
-
Cyber Vulnerability Assessment Analyst SME
4 weeks ago
Arlington, Virginia, United States TestPros Full timeJob SummaryTestPros is seeking a highly skilled Cyber Vulnerability Assessment Analyst SME to support a CISA cyber security program. The ideal candidate will have 10+ years of experience as a Security Engineer with supervisory/leadership abilities to oversee large teams responsible for planning, analyzing, implementing, and maintaining multiple...
-
Cyber Threat Analyst
4 weeks ago
Arlington, Virginia, United States Nightwing Full timeAbout the Role:Nightwing is seeking a highly skilled Cyber Threat Analyst to join our team. As a Cyber Threat Analyst, you will be responsible for correlating incident data to identify specific trends in reported incidents, recommending defense in depth principles and practices, and performing computer network defense incident...
-
Cyber Threat Intelligence Specialist
4 weeks ago
Arlington, Virginia, United States Zachary Piper Full timeZachary Piper Solutions is seeking a highly skilled Cyber Threat Analyst to join our team in Arlington, VA. As a Cyber Threat Analyst, you will be responsible for providing on-site incident response and investigation services to civilian government agencies and critical infrastructure entities.Key Responsibilities:Develop and implement mitigation strategies...
-
Cyber Threat Intelligence Specialist
4 weeks ago
Arlington, Virginia, United States Rapid7 Full timeRapid7 is seeking a highly skilled Cyber Threat Intelligence Specialist to join our Threat Command team and elevate our threat intelligence analysis capabilities.About the RoleAs a Cyber Threat Intelligence Specialist at Rapid7, you will be responsible for reviewing alert data to identify threat activity in customer environments.You will be empowered to...
-
Cyber Threat Detection Specialist
3 weeks ago
Arlington, Virginia, United States Center for Internet Security Full timeCyber Threat Detection Analyst Job DescriptionThe Center for Internet Security is seeking a highly skilled Cyber Threat Detection Analyst to join our team. As a member of our Cybersecurity Operations Center (SOC), you will play a critical role in detecting and responding to cyber threats affecting State, Local, Tribal, and Territorial (SLTT) governments.Key...
-
Cyber Incident Manager
4 weeks ago
Arlington, Virginia, United States Argo Cyber Systems Full timeJob SummaryArgo Cyber Systems is seeking a highly skilled Cyber Incident Manager to support our critical customer mission. The successful candidate will be responsible for correlating incident data, recommending defense in depth principles, and performing computer network defense incident triage.Key Responsibilities:Correlating incident data to identify...
-
Cyber Threat Intelligence Specialist
4 weeks ago
Arlington, Virginia, United States Peraton Full timeJob Summary:Peraton is seeking a Cyber Threat Analyst for the Department of State (DoS) Diplomatic Security Cyber Mission (DSCM) program. This role involves analyzing and identifying cyber threats, providing support to criminal investigators, and conducting in-depth log analysis. A bachelor's degree and 5 years of experience are required, along with a...
-
Cyber Threat Detection Specialist
4 weeks ago
Arlington, Virginia, United States Center for Internet Security Full timeCyber Threat Detection SpecialistJoin the Center for Internet Security as a Cyber Threat Detection Specialist and contribute to the protection of the connected world. As a key member of our team, you will be responsible for analyzing security events affecting State, Local, Tribal, and Territorial (SLTT) governments, providing comprehensive reviews of...
-
Director of Cyber Threat Management
4 weeks ago
Arlington, Virginia, United States Surescripts Full timeJob Summary: We are seeking a highly skilled Director of Cyber Threat Management to lead our proactive information security program. The ideal candidate will have a strong background in threat management, cybersecurity, and leadership. The Director of Cyber Threat Management will be responsible for identifying and mitigating cyber threats to the Surescripts...
-
Cyber Threat Operations Specialist
4 weeks ago
Arlington, Virginia, United States Peraton Full timeJob SummaryAs a Cyber Threat Operations Specialist at Peraton, you will play a critical role in supporting the development of cyber defense plans and coordinating with intelligence community partners to ensure effective input. Your expertise in cyber operations theory and ability to create and implement cyber programs will be essential in defending against...
-
Cyber Network Defense Analyst IV
4 weeks ago
Arlington, Virginia, United States Argo Cyber Systems Full timeJob Title: Cyber Network Defense Analyst IVArgo Cyber Systems is seeking a highly skilled Cyber Network Defense Analyst IV to join our team. As a key member of our cybersecurity team, you will be responsible for monitoring and analyzing network activity to identify potential threats and protect our systems and data.Key Responsibilities:Characterize and...
-
Cyber Network Defense Analyst III
3 weeks ago
Arlington, Virginia, United States Nightwing Full timeAbout the Role:Nightwing is seeking a highly skilled Cybersecurity Threat Hunter to join our team. As a Cybersecurity Threat Hunter, you will be responsible for identifying and mitigating cyber threats to our customers' networks and systems.Key Responsibilities:Correlate forensic findings to network events to develop an intrusion narrativeCollect and...
-
Cyber Forensics Specialist IV
4 weeks ago
Arlington, Virginia, United States Argo Cyber Systems Full timeJob Title: Host Based Cyber Systems Analyst IVJob Summary:Argo Cyber Systems is seeking a highly skilled Host Based Cyber Systems Analyst IV to join our team. As a key partner to the Department of Homeland Security (DHS), we provide critical support to the Hunt and Incident Response Team (HIRT) in securing the Nation's cyber and communications...
-
Cyber Network Defense Analyst II
4 weeks ago
Arlington, Virginia, United States Nightwing Full timeCybersecurity Threat HunterJob Summary:Nightwing is seeking a highly skilled Cybersecurity Threat Hunter to join our team. As a Cybersecurity Threat Hunter, you will be responsible for identifying and analyzing potential security threats to our customers' networks and systems.Responsibilities:Correlate forensic findings to network events to develop an...
-
Cyber Systems Engineer
3 weeks ago
Arlington, Virginia, United States Leidos Full timeJob Summary:We are seeking a highly skilled Senior Cyber Systems Engineer to join our team at Leidos. As a key member of our Electronic Warfare Division, you will be responsible for leading a team of engineers in threat hunting and tactical analysis of ongoing attacks to mission systems.Key Responsibilities:Lead small R&D projects as PI/ChEng.Contribute to...
-
Cyber Security Specialist
4 weeks ago
Arlington, Virginia, United States JFL Consulting, LLC Full timeJob Title: Cyber Security OperatorWe are seeking a highly skilled Cyber Security Operator to join our team at JFL Consulting, LLC. The successful candidate will be responsible for conducting advanced cyber analysis and reporting, liaising with customers and stakeholders, and providing technical insights and recommendations.Key Responsibilities:Conduct...